Best Practice Update

Checklists in navy text by Data Protection Education. Data Protection Services badge.  The DPE Knowledge Bank on a laptop screen

Product Focus on Checklists : Biometrics

All of our customers have access to the DPE Knowledge Bank which has a Best Practice Checklist area.  Each checklist is designed to help you walk through all aspects of data protection.
The checklist will give you an insight about where your organisation is with data protection from a data privacy and technical security perspective. The checklists form part of the Best Practice library which includes contextualised guidance, documents and resources on specific areas of data processing.  The checklists form part of the ICO Accountability Framework which helps organisations with their governance and corporate risk management where it relates to data protection.    The checklists cover all aspects of the framework, enabling you to assess against organisation baselines:

  1. Leadership & Oversight
  2. Risk Management (DPIA's)
  3. Policies & Procedures
  4. Individual Rights
  5. Contracts & Data Sharing
  6. Transparency
  7. Training & Awareness
  8. Records Management
  9. Monitoring Verification & Reporting (Data Breaches, SARs and FOI's)
  10. Response & Enforcement (SARs and FOI's)

Biometrics

Biometric data is personal data resulting from specific processing relating to the physical, physiological or behavioural characteristics of a natural person, that allow or confirm the unique identification of that natural person, such as facial images. If you are considering implementing a system that includes biometrics, then the Biometric checklist will help you understand what needs to be taken into consideration for the project.  It links to the Biometric Data Best Practice Area which gives guidance that refers to the protection of biometric information of children in schools and colleges published by the DfE.  there is a template policy and consent form.


Answer a sample Biometrics checklist question:

Have you considered whether collecting biometric data is necessary?

Invalid Input


Amazing, you have ticked off an important item on the biometrics checklist.  Biometrics is special category data whenever your process it for the purpose of identifying someone, so it's very important to ensure you only collect what is necessary:

For further help and guidance and access to the full checklist, please contact This email address is being protected from spambots. You need JavaScript enabled to view it..




Contact your data protection lead or DPO to start putting Biometrics best practice in place, including a relevant policy:

Clipart cartoon with headphones on Please contact us for more help and advice about data protection compliance and cyber security standards: This email address is being protected from spambots. You need JavaScript enabled to view it. including the full checklist and best practice. 

 


Try asking the data protection lead in your organisation, or SLT digital lead or contact your DPO:

We can provide help and guidance with data protection compliance, cyber security standards and records management: This email address is being protected from spambots. You need JavaScript enabled to view it. including the full checklist and best practice.




DPE customers can get started on completing the Biometric checklist here:

Search